CyberWire Daily

ShadyPanda’s patient poisoning.

Dec 2, 2025
Joining the discussion is Stav Setti, Principal Researcher at Palo Alto Networks, who investigates cloud-based cyber threats. He dives into the Jingle Thief campaign, revealing how a Moroccan group exploited Microsoft 365 for gift card fraud. Stav highlights their patient, malware-free tactics and the importance of monitoring for security breaches, beyond just relying on MFA. Additionally, he explores the growing concerns around cybersecurity regulations and the implications of recent breaches across different countries.
Ask episode
AI Snips
Chapters
Transcript
Episode notes
INSIGHT

Korea Mulls Punitive Penalties For Big Breach

  • South Korea is considering punitive damages after a massive five-month undetected data breach at Coupang.
  • Officials view record penalties as a potential deterrent beyond traditional compensatory models.
INSIGHT

Secure Boot Flaw Threatens Pre-OS Compromise

  • Qualcomm disclosed a critical secure-boot vulnerability that could let attackers control devices before OS load.
  • The bug's internal discovery raises concerns about how long it may have existed in production devices.
INSIGHT

Codex CLI Trusted Repo Configs Risk Backdoors

  • OpenAI's Codex CLI implicitly trusted repository config files and could auto-run attacker-supplied commands.
  • Compromised templates or popular repos could create reproducible supply-chain backdoors for developers.
Get the Snipd Podcast app to discover more snips from this episode
Get the app